Dozens of Red Hat packages backdoored through its official NPM channel
…package versions as potentially compromised,” Socket researchers wrote. “The payload executes during npm install, before application code imports or uses the package, so exposure depends on installation or CI execution, not runtime…